- At least 2G RAM
- Docker
- Docker-compose(v1.29.0+) or docker image
docker-composeordocker composeplugin (Note go version's docker-compose ignore driver:none see docker/compose#8578)
- Create dns records for content-server(default:www) profile-server(default:profile) syncserver(default:token) auth-server(default:api) oauth-server(default:oauth) graphql-api(default:graphql) , Details in config.yml.sample domain section. They should share same base(APEX) domain name.
- Make certs for content-server(default:www) profile-server(default:profile) syncserver(default:token) auth-server(default:api) oauth-server(default:oauth) graphql-api(default:graphql), or a wildcard cert for all subdomains (Recommended).
- Copy config.yml.sample to config.yml and edit it with your real config.
- Run ./init.sh after everytime you edit config.yml or anything in _init to generate new docker-compose.yml and other configs in destination folder `pwd`/dest.
- If you have demands on alternative networking mode, you can pick the most suitable networking and certificate mode from examples folder and set it up. For example if you want to use reverse proxy , please see examples/reverse_proxy_*
- cd to destination folder and docker compose up -d
- Wait util all service working.
- Config your firefox accroding to instructions from ./init.sh 's output
- If you upgrade fxa version do
docker-compose up -dto replace changed containers. - Upgrade fxa version everytime when you upgrade this repo.
init.shwill create all files in$DEST(`pwd`/dest for default) folder for deployment. so make sure persistenpath should be relative to$DESTif using relative path- you can change dest folder via
DEST=somefolder ./init.sh
- The branch/git commit of this repo
- The version of Firefox you used.
- config.yml (redacte your sensitive information like: domain, path) and fxa version
- The output of
docker compose ps -a - The output of
docker compose logs - The output of the error and the error message from console panel of Firefox Developer tool (F12) and non-2xx requests from network panel of Firefox Developer tool (F12)
Now firefox use oauth_webchannel_v1 instead of fx_desktop_v3 as context param.
If you still want to use fx_desktop_v3 , remeber to set identity.fxaccounts.oauth.enabled to false. However content-server may not work in this situation.
Note in future , firefox or fxa may remove fx_desktop_v3 support.
- [BREAKING] mysql from 5.7 to 8.0 (It is recommended to use version after 8.0.16 since it have auto upgrade feature, otherwise you need to manually do
mysql_upgrade)
- Please upgrade your
docker-composewhich supportservice_completed_successfullyof depends_on condition. see:https://github.com/compose-spec/compose-spec - [BREAKING] mysql from 5.6 to 5.7 so you need manual do
mysql_upgrade, likedocker-compose exec mysqldb mysql_upgrade.see mysql documention.
if your about:config useOAuthForSyncToken is true. Please update syncserver docker image to latest.
To avoid set permission of public folder (for storing profile image) in profile server. A one-shot root container is spawned to change public folder permission then exit.
So docker rootless mode is not supported.
if one day aws-sdk-js support endpoint url env / fxa-profile support new S3(cfg.endpoint) . just use minio/minio to replace local.
TODO:
- nginx + http2
- firefox notes with self kinto server
- use yq to generate secrests
use docker-compose->secrets to protoect secrets? - [] limit docker-compose each container's resources
- firefox-send
- firefox fenix
- mozilla-services/channelserver
- autotest with pyfxa or application-services/components/fxa-client
webextensions.storage.sync.enabled:true
services.sync.extension-storage.skipPercentageChance = 0 // to never skip sync for ext-storage ref:https://bugzilla.mozilla.org/show_bug.cgi?id=1621806
services.sync.scheduler.activeInterval = 10
services.sync.scheduler.fxa.singleDeviceInterval = 10
services.sync.scheduler.idleInterval = 10
services.sync.scheduler.idleTime = 10
services.sync.scheduler.immediateInterval = 10
services.sync.syncInterval = 60
services.sync.syncThreshold = 10
More about:config https://github.com/mozilla/fxa/blob/main/packages/fxa-dev-launcher/profile.mjs
- (Done by default) you need edit
/_init/auth/oauthserver-prod.jsonedit fenix' redirecturi and add scope
"scope": "https://identity.mozilla.com/tokens/session"- (Done by default) edit
_init/content/contentserver-prod.jsonoldsyncredirecturioauth/success/a2270f727f45f648
Install newest version and open the app. Then go to
- Settings
- About Firefox
- Click Firefox icon 5 times
- Go back
- Edit "Custom Firefox Account server" -> content server url (For example: https://www.fxa.example.local) and "Custom Sync server" -> sync server url (For example: https://token.fxa.example.local/token/1.0/sync/1.5")
diff --git a/src/background.js b/src/background.js
index 85da9e2..0aa878e 100644
--- a/src/background.js
+++ b/src/background.js
@@ -1,8 +1,12 @@
-const KINTO_SERVER = 'https://testpilot.settings.services.mozilla.com/v1';
+var KINTO_SERVER = 'https://kinto.<your_server>/v1/';
+
+// const KINTO_SERVER = 'https://testpilot.settings.services.mozilla.com/v1';
// XXX: Read this from Kinto fxa-params
-const FXA_CLIENT_ID = 'a3dbd8c5a6fd93e2';
-const FXA_OAUTH_SERVER = 'https://oauth.accounts.firefox.com/v1';
-const FXA_PROFILE_SERVER = 'https://profile.accounts.firefox.com/v1';
+var FXA_CLIENT_ID = 'a3dbd8c5a6fd93e2';
+var FXA_OAUTH_SERVER = 'https://oauth.<your_server>/v1';
+var FXA_CONTENT_SERVER = 'https://www.<your_server>';
+var FXA_PROFILE_SERVER = 'https://profile.<your_server>/v1';
+
const FXA_SCOPES = ['profile', 'https://identity.mozilla.com/apps/notes'];
let isEditorReady = false;
let editorConnectedDeferred;
@@ -26,7 +30,10 @@ function fetchProfile(credentials) {
}
function authenticate() {
- const fxaKeysUtil = new fxaCryptoRelier.OAuthUtils();
+ const fxaKeysUtil = new fxaCryptoRelier.OAuthUtils({
+ oauthServer:FXA_OAUTH_SERVER,
+ contentServer:FXA_CONTENT_SERVER
+ });
chrome.runtime.sendMessage({
action: 'sync-opening'
});native/app/utils/constants.js
export const KINTO_SERVER_URL = 'https://testpilot.settings.services.mozilla.com/v1';
export const FXA_PROFILE_SERVER = 'https://profile.accounts.firefox.com/v1';
export const FXA_CONTENT_SERVER = 'https://accounts.firefox.com';
export const FXA_OAUTH_SERVER = 'https://oauth.accounts.firefox.com/v1';
export const FXA_OAUTH_CLIENT_ID = '7f368c6886429f19';native/android/app/src/main/java/com/notes/fxaclient/FxaClientModule.java
private static final String CLIENT_ID = "7f368c6886429f19";
private static final String CONFIG_URL = "https://accounts.firefox.com";pairingChannelServerUri: "wss://channelserver.services.mozilla.com",
pairingClients: [ "3c49430b43dfba77", "a2270f727f45f648", "1b1a3e44c54fbb58" ],
pairing: {
clients: {
default: [
'3c49430b43dfba77', // Reference browser
'a2270f727f45f648', // Fenix
'1b1a3e44c54fbb58', // Firefox for iOS
],
doc:
'OAuth Client IDs that are allowed to pair. Remove all clients from this list to disable pairing.',
env: 'PAIRING_CLIENTS',
format: Array,
},
server_base_uri: {
default: 'wss://channelserver.services.mozilla.com`1',
doc: 'The url of the Pairing channel server.',
env: 'PAIRING_SERVER_BASE_URI',
},
},